Privacy

LoggerSync Privacy Policy

This policy explains what LoggerSync accesses and collects, why it is used, who may receive it, and the choices available to you.

Last updated: August 4, 2026

This is the privacy notice for the LoggerSync Android application and its connected web services. It describes the application’s current behaviour and should be read together with any privacy information supplied by the organisation that gave you access.

Who this policy covers

This privacy policy applies to the LoggerSync Android application, package com.loggersync, and the LoggerSync web services used by the application. LoggerSync is developed by ForgedBase.

LoggerSync connects to a site supplied by your employer, customer, public body, monitoring organisation, or another organisation that has authorised your access. That organisation controls the users, stations, monitoring records, alerts, photos, permissions, and retention settings within its site. For requests about organisation-controlled data, you may need to contact that organisation as well as ForgedBase.

Information about you and your account

When you connect LoggerSync to an authorised site, the application accesses profile information supplied by that site, including your name, email address, role, permissions, organisation or team name, site name, site subdomain, and branding. This information identifies your connected account and ensures you see only the features and data you are permitted to access.

LoggerSync does not create a new user account inside the Android application. Access is provisioned by an administrator using a controlled Mobile App Key. The pairing code is sent to the selected LoggerSync site to authorise the device and is not retained by the application after pairing.

Device and connection information

During pairing, LoggerSync sends a device identifier, a general device label, the operating-system platform, and pairing time to the authorised site. The server stores a one-way hash of the device identifier with the mobile access record so administrators can recognise, limit, and revoke paired devices.

The authorised site and its infrastructure providers may process standard network and security information such as IP address, request time, requested endpoint, request identifier, response status, and security or audit events. This information is used to deliver the service, enforce rate limits, investigate errors, prevent abuse, and protect accounts.

Station and operational information

Depending on your permissions, LoggerSync accesses monitoring information held by the authorised site. This can include station names and identifiers, station coordinates, sensor channels, readings, recorded and received times, charts, station status, alerts, data-source information, server or logger details, mobile notices, and organisation branding.

The application uses this information to provide dashboards, station lists, maps, charts, alerts, photo galleries, operational details, and realtime updates. LoggerSync does not use station information for advertising or build advertising profiles from it.

Photos and embedded location data

If you choose to take or select a station photo, LoggerSync processes the image, selected station, activity label, capture time, file information, and a unique upload identifier. The photo may be held temporarily on your device while it is queued, compressed, or retried, and is then uploaded to the authorised site.

A selected photo may contain GPS coordinates in its embedded EXIF metadata. When those coordinates are present, LoggerSync reads and uploads the latitude, longitude, and any available accuracy value with the photo so authorised users can understand where the image was captured. LoggerSync does not request continuous or background location access.

If you enable “Save station photos to device”, a new photo taken with LoggerSync is also saved to your device Photos or Gallery application. Photos and station-photo folders are shared with another application only when you deliberately use the device sharing controls.

Information stored on your device

LoggerSync stores connected-account details in Android secure storage. These details include the site subdomain, mobile API access key, site and team names, your name and email address, optional logo URL, and relevant display preferences. The API access key authenticates requests to the site you connected.

The application may also store a salted security-PIN hash, app preferences, dismissed-notice identifiers, the last received message identifier, a generated device identifier when a platform identifier is unavailable, and queued photo files and metadata. Android application backup is disabled for LoggerSync.

If you export connected accounts, LoggerSync creates a password-protected, encrypted backup file containing the selected connected-account details. The file is created only at your request, and you control where it is saved or shared.

Realtime connections, maps and external actions

LoggerSync maintains an authenticated realtime connection to the authorised site while the application is in use so it can receive station, alert, branding, notice, message, and photo events without repeatedly requesting them.

The station map loads map tiles from OpenStreetMap. Requests to the map-tile provider necessarily include network information such as your IP address and the requested map tile. If you choose the directions action, LoggerSync opens Google Maps or another compatible external application with the selected station coordinates. Those external services process information under their own privacy policies.

How information is used

ForgedBase and the organisation operating your authorised site use information as needed to pair and authenticate devices, provide permitted station and alert features, upload and organise photos, deliver realtime updates, maintain preferences, secure the service, troubleshoot failures, respond to support requests, comply with law, and improve reliability.

Where data-protection law requires a legal basis, processing may be necessary to perform a contract or provide the service requested by you or your organisation, comply with a legal obligation, protect legitimate security and operational interests, or act on consent where consent is the appropriate basis.

Sharing and service providers

Information is available to authorised users and administrators of the organisation that operates the site you connect to, according to their assigned permissions. ForgedBase and site operators may use hosting, storage, email, networking, security, backup, and technical-support providers only as needed to operate and protect LoggerSync.

Map tiles are requested from OpenStreetMap. Information is passed to Google Maps, your device sharing destination, or another external application only when you choose the related action. We may also disclose information when required by law or reasonably necessary to protect users, the public, LoggerSync, or connected organisations from fraud, abuse, or security incidents.

LoggerSync does not sell personal information. The Android application contains no advertising SDK and no third-party analytics or crash-reporting SDK at the date of this policy.

Retention and deletion

Connected-account credentials remain in secure storage until you remove the connected account, clear the application data, or uninstall LoggerSync. A queued photo remains on the device until it uploads successfully, you discard it, or the application data is removed. An exported encrypted backup remains wherever you saved it until you delete it.

Information stored by an authorised site is retained according to that organisation’s settings, operational needs, legal obligations, backup practices, and audit requirements. Mobile access records may be retained while access is active and for a reasonable period afterwards for security and audit purposes.

To remove local access, use LoggerSync’s account-removal control. To revoke server access or request deletion of account or organisation-controlled data, contact the administrator of the site you connected to. You may also contact ForgedBase at support@forgedbase.com, and we will assist or direct the request to the appropriate organisation where required.

Security

LoggerSync uses encrypted HTTPS and secure websocket connections when supported by the authorised site. Mobile API keys and connected-account details are stored using Android secure storage, device identifiers are hashed by the server, and account export files are encrypted using a password-derived key with authenticated encryption.

We use reasonable technical and organisational safeguards designed to protect personal information and operational data. No device, transmission, or online service can guarantee absolute security. Protect your device PIN, LoggerSync security PIN, Mobile App Keys, encrypted backup passwords, and any files you export.

Your choices and privacy rights

You can choose whether to connect an account, take or select a photo, save captured photos to your device gallery, share a photo or folder, open directions, export connected accounts, or import an encrypted backup. You can remove a connected account from LoggerSync at any time.

Depending on where you live, you may have rights to access, correct, export, restrict, object to, or request deletion of personal information, and to complain to a data-protection authority. Contact your site administrator for organisation-controlled records or support@forgedbase.com for requests concerning ForgedBase.

Children’s privacy

LoggerSync is a business and operational monitoring application. It is not directed to children and is not intended for use by anyone under 18 unless their organisation has a lawful basis, appropriate supervision, and any required consent.

Changes to this policy

We may update this policy when LoggerSync, its data practices, or legal requirements change. We will publish the revised date on this page and take reasonable additional steps to notify users when a change is material.

Contact

LoggerSync is developed by ForgedBase in Ireland. For privacy questions, rights requests, or concerns about this policy, email support@forgedbase.com. For data controlled by the organisation that provided your LoggerSync access, contact that organisation’s administrator or privacy contact.